From bc128a8b1937db11f1190c569079bda46e72dfb0 Mon Sep 17 00:00:00 2001 From: Marius Date: Tue, 17 Feb 2026 16:33:44 +0200 Subject: [PATCH] Security fix --- src/main/java/uk/ac/cam/cl/dtg/segue/api/GroupsFacade.java | 1 + 1 file changed, 1 insertion(+) diff --git a/src/main/java/uk/ac/cam/cl/dtg/segue/api/GroupsFacade.java b/src/main/java/uk/ac/cam/cl/dtg/segue/api/GroupsFacade.java index eaddd698ad..e6f1c17639 100644 --- a/src/main/java/uk/ac/cam/cl/dtg/segue/api/GroupsFacade.java +++ b/src/main/java/uk/ac/cam/cl/dtg/segue/api/GroupsFacade.java @@ -320,6 +320,7 @@ public Response getGroupsForGivenUser(@Context final HttpServletRequest request, SegueErrorResponse.getIncorrectRoleResponse(); } + RegisteredUserDTO userOfInterest = userManager.getUserDTOById(userId); List groups = groupManager.getGroupsByOwner(userOfInterest);